SOC Analyst

Shree Narayani Networking SolutionsDallas, TX
Onsite

About The Position

We have a permanent role for a US Citizen or GC onsite in Westlake, TX (Dallas area) for a SOC Analyst with Exabeam SIEM and UEBA. Also experience writing queries and use cases. Also looking for experience in Security monitoring and incident response, threat hunting, detection engineering, security event correlation & log analysis, threat intelligent operations, MITRE ATT&CK Framework, IOC/IOA Analysis, Root Cause Analysis and Exabeam. Also good customer interfacing. We are seeking a Senior SOC Analyst / Lead SOC Analyst with strong hands-on expertise in Exabeam SIEM and UEBA to serve as the primary onshore Security Operations resource supporting a strategic customer environment. Experience writing queries / Expert in use cases. We DON'T NEED a engineer or Administrator (needs to be a SOC Analyst). This individual will lead advanced incident investigations, threat hunting, detection engineering, and incident response activities while acting as the day-to-day SOC representative for the customer. The ideal candidate will be comfortable operating in a customer-facing role, engaging directly with the customer's CISO organization, leading critical security incidents, and driving improvements across detection and response capabilities.

Requirements

  • Minimum 4 years of core SOC experience.
  • Mandatory hands-on experience with Exabeam SIEM and UEBA.
  • Strong experience in: Security Monitoring & Incident Response
  • Strong experience in: Threat Hunting
  • Strong experience in: Detection Engineering
  • Strong experience in: Experience in Use Cases and writing queries
  • Strong experience in: Security Event Correlation & Log Analysis
  • Strong experience in: Threat Intelligence Operations
  • Strong experience in: MITRE ATT&CK Framework
  • Strong experience in: IOC/IOA Analysis
  • Strong experience in: Root Cause Analysis
  • Must have: Exabeam
  • Minimum 4 years of hands-on SOC experience in an enterprise environment.
  • Strong hands-on experience with Exabeam SIEM and UEBA (not just exposure or administration).
  • Experience performing advanced incident investigations and acting as a lead responder during security incidents.
  • Experience with threat hunting, detection engineering, and SIEM content/rule tuning.
  • Comfortable serving as a customer-facing SOC representative and communicating with senior security stakeholders.
  • Willing to work onsite in Westlake, TX during U.S. business hours.
  • Willing to participate in on-call rotations and travel to the customer site during high-priority incidents.
  • U.S. Citizen or GC

Nice To Haves

  • Good to have: Anomali
  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or a related discipline.
  • Experience supporting large enterprise / public sector environments.
  • Relevant certifications.

Responsibilities

  • Monitor, investigate, and respond to security alerts and incidents using Exabeam SIEM and UEBA.
  • Lead advanced incident investigations, including root cause analysis, containment, eradication, recovery, and post-incident reviews.
  • Serve as the primary SOC point of contact for the customer and represent SOC operations in day-to-day engagements.
  • Act as the Incident Responder and Commander during high-priority security incidents, coordinating response activities across multiple teams.
  • Develop, tune, and optimize Exabeam correlation rules, behavioral analytics use cases, dashboards, and detection content.
  • Conduct proactive threat hunting activities leveraging security telemetry, UEBA insights, and threat intelligence.
  • Leverage Anomali threat intelligence to enrich investigations and improve detection effectiveness.
  • Map detections and investigations to the MITRE ATT&CK framework.
  • Collaborate with onshore and offshore SOC teams, as well as infrastructure, network, cloud, and application teams.
  • Produce executive and technical incident reports, threat trend analysis, and operational metrics.
  • Act as the face of the SOC for the customer during U.S. business hours.
  • Build strong working relationships with customer security leadership and operational teams.
  • Provide regular operational updates and incident briefings directly to the customer's CISO organization.
  • Lead incident communications and drive coordination during major cyber security events.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service